What is CVE-2026-53573?
CVE-2026-53573: GeoNetwork versions from 3.12.0 until 4.2.16 and 4.4.11 contain unsafe redirect validation in OAuth2 and Keycloak authentication filters. This flaw allows an attacker to perform an external redirect after login to a malicious site. Users should immediately update to a patched version to mitigate the risk.
Azərbaycanca: CVE-2026-53573: GeoNetwork-in 3.12.0-dən 4.2.16 və 4.4.11 versiyalarına qədər olan aralıqda, OAuth2 və Keycloak autentifikasiya filtrlərində təhlükəli redirect yoxlaması mövcuddur. Bu boşluq hücumçuya login sonrası istifadəçini idarə etdiyi zərərli xarici səhifəyə yönləndirməyə imkan verir. Təsirə məruz qalan versiyaları istifadə edənlər dərhal təhlükəsizlik yeniləməsini tətbiq etməlidir.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which versions of GeoNetwork are affected by CVE-2026-53573?
This vulnerability affects GeoNetwork versions from 3.12.0 up to 4.2.16 and 4.4.11.
In which authentication mechanisms was CVE-2026-53573 discovered?
The vulnerability was discovered in the unsafe redirect validation within the OAuth2 and Keycloak authentication filters.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.